Lenovo ThinkServer RD440

CPE Details

Lenovo ThinkServer RD440
-
2017-08-28
15h40 +00:00
2021-05-04
16h10 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:h:lenovo:thinkserver_rd440:-:*:*:*:*:*:*:*

Informations

Vendor

lenovo

Product

thinkserver_rd440

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-9086 2018-11-16 13h00 +00:00 In some Lenovo ThinkServer-branded servers, a command injection vulnerability exists in the BMC firmware download command. This allows a privileged user to download and execute arbitrary code inside the BMC. This can only be exploited by authorized privileged users.
7.2
High
CVE-2017-17833 2018-04-23 16h00 +00:00 OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.
9.8
Critical
CVE-2017-3753 2017-08-10 00h00 +00:00 A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical access to a system may be able to run specially crafted code that can allow them to bypass system protections such as Device Guard and Hyper-V.
6.8
Medium